Malware

MSIL/Agent.VRS information

Malware Removal

The MSIL/Agent.VRS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Agent.VRS virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine MSIL/Agent.VRS?


File Info:

name: 51401E146E8F39696800.mlw
path: /opt/CAPEv2/storage/binaries/b8135b3647b6e79d0574b19da0955206bc6e5b1750b491a7c816b7e3120eb835
crc32: D97EA0D9
md5: 51401e146e8f39696800a75cd99b99a9
sha1: b09c0254f4d0c61c4f0a73abbcb70eecfdb7b350
sha256: b8135b3647b6e79d0574b19da0955206bc6e5b1750b491a7c816b7e3120eb835
sha512: 87875407d3613913a1a2a1c7562615327cf7c19819d86b670729712df03ef03cfab9e462f2cda9e2cace42653b3663cee6d186f8181e4b50cab46ff4a59168ba
ssdeep: 6144:GqcWK19VxXsQ7TEQplnqmKk3/BryPpmaes:AWght9lnqTK9rae
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T122442C2A535FAAB4CFA930F74296F6C51F609AF251E6C254E5F03CE41100F1EA78A74E
sha3_384: 4233405fa4968c341a1a7ba03895b9c732543a78d1cfc4ecb25e41f80491803662444bfeaa468f82c694c5feeec52d03
ep_bytes: ff250020001000000000000000000000
timestamp: 2015-01-20 00:47:45

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: ECSals_UBxt.dll
LegalCopyright:
OriginalFilename: ECSals_UBxt.dll
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

MSIL/Agent.VRS also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.MSIL.Kryptik.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.91732
CAT-QuickHealTrojan.MSILAgent.S26837560
SkyhighGenericRXQX-LU!51401E146E8F
McAfeeGenericRXQX-LU!51401E146E8F
Cylanceunsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:MSIL/Kryptik.64b6377a
K7GWTrojan ( 0058ea051 )
K7AntiVirusTrojan ( 0058ea051 )
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of MSIL/Agent.VRS
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Packed.Generickdz-9910265-0
KasperskyHEUR:Trojan.MSIL.Kryptik.gen
BitDefenderTrojan.GenericKDZ.91732
AvastWin32:MalwareX-gen [Trj]
TencentTrojan.Msil.Kryptik.fb
EmsisoftTrojan.GenericKDZ.91732 (B)
F-SecureHeuristic.HEUR/AGEN.1301100
VIPRETrojan.GenericKDZ.91732
SophosMal/Generic-S
IkarusTrojan.MSIL.Agent
JiangminTrojan.MSIL.althw
VaristW32/MSIL_Agent.CKH.gen!Eldorado
AviraHEUR/AGEN.1301100
Antiy-AVLTrojan/MSIL.Kryptik
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Generic.D16654
ZoneAlarmHEUR:Trojan.MSIL.Kryptik.gen
GDataTrojan.GenericKDZ.91732
GoogleDetected
VBA32TScope.Trojan.MSIL
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/GdSda.A
YandexTrojan.Kryptik!HYXlhPsmqHs
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetMSIL/Agent.UUL!tr
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS

How to remove MSIL/Agent.VRS?

MSIL/Agent.VRS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment